[Git][security-tracker-team/security-tracker][master] chromium dsa

2021-05-03 Thread Michael Gilbert
Michael Gilbert pushed to branch master at Debian Security Tracker / security-tracker Commits: 2b2754f2 by Michael Gilbert at 2021-05-04T02:59:20+00:00 chromium dsa - - - - - 2 changed files: - data/DSA/list - data/dsa-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Reserve DLA-2646-1 for subversion

2021-05-03 Thread Anton Gladky
Anton Gladky pushed to branch master at Debian Security Tracker / security-tracker Commits: b22e0d56 by Anton Gladky at 2021-05-03T22:33:05+02:00 Reserve DLA-2646-1 for subversion - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes:

[Git][security-tracker-team/security-tracker][master] Add CVE-2020-15153/ampache

2021-05-03 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 5b8763af by Salvatore Bonaccorso at 2021-05-03T22:20:42+02:00 Add CVE-2020-15153/ampache - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Process NFUs

2021-05-03 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 738ec32a by Salvatore Bonaccorso at 2021-05-03T22:20:04+02:00 Process NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2021-3504/hivex

2021-05-03 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 0a90c27b by Salvatore Bonaccorso at 2021-05-03T22:13:50+02:00 Add Debian bug reference for CVE-2021-3504/hivex - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] automatic update

2021-05-03 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 74d67e27 by security tracker role at 2021-05-03T20:10:25+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2021-3504/hivex

2021-05-03 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 7ffd72fd by Salvatore Bonaccorso at 2021-05-03T22:07:05+02:00 Add CVE-2021-3504/hivex - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2020-7924/mongo-tools

2021-05-03 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 974f45f8 by Salvatore Bonaccorso at 2021-05-03T21:58:37+02:00 Add Debian bug reference for CVE-2020-7924/mongo-tools - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add Debian bug reference for CVE-2020-18032

2021-05-03 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 7b91678a by Salvatore Bonaccorso at 2021-05-03T17:36:27+02:00 Add Debian bug reference for CVE-2020-18032 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add upstream issue for CVE-2020-18032/graphviz

2021-05-03 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8c7b8b83 by Salvatore Bonaccorso at 2021-05-03T16:50:50+02:00 Add upstream issue for CVE-2020-18032/graphviz - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] md4c fixed in sid

2021-05-03 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: cd25a521 by Moritz Muehlenhoff at 2021-05-03T16:50:07+02:00 md4c fixed in sid - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] semi-automatic unclaim after 2 weeks of inactivity

2021-05-03 Thread Lynoure Braakman
Lynoure Braakman pushed to branch master at Debian Security Tracker / security-tracker Commits: 10c7f0c7 by Lynoure Braakman at 2021-05-03T16:05:49+02:00 semi-automatic unclaim after 2 weeks of inactivity Signed-off-by: Lynoure Braakman lyno...@gmail.com - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] new graphviz issue

2021-05-03 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: dd1ca29e by Moritz Muehlenhoff at 2021-05-03T14:15:01+02:00 new graphviz issue NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] dla: take bind9

2021-05-03 Thread Emilio Pozuelo Monfort
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: e728cf86 by Emilio Pozuelo Monfort at 2021-05-03T12:18:16+02:00 dla: take bind9 - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Mark CVE-2020-36327/bundler as also affecting rubygems

2021-05-03 Thread Emilio Pozuelo Monfort
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: 731bc5f0 by Emilio Pozuelo Monfort at 2021-05-03T12:16:52+02:00 Mark CVE-2020-36327/bundler as also affecting rubygems bin:bundler is shipped as part of src:rubygems since bullseye. - - - -

[Git][security-tracker-team/security-tracker][master] Triage samba for stretch

2021-05-03 Thread Emilio Pozuelo Monfort
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: fbb4bcf3 by Emilio Pozuelo Monfort at 2021-05-03T11:00:31+02:00 Triage samba for stretch - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] Triage phpseclib and php-phpseclib for stretch

2021-05-03 Thread Emilio Pozuelo Monfort
-1077 -- +php-phpseclib + NOTE: 20210503: unclear if 2.x is affected, double check (pochu) +-- +phpseclib + NOTE: 20210503: apparently 1.x is not affected, but double check (pochu) +-- ring (Thorsten Alteholz) -- ruby-actionpack-page-caching View it on GitLab: https://salsa.debian.org

[Git][security-tracker-team/security-tracker][master] automatic update

2021-05-03 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e6b7f914 by security tracker role at 2021-05-03T08:10:18+00:00 automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] some exiv2 issues n/a on buster & stretch

2021-05-03 Thread Emilio Pozuelo Monfort
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: f2e1fd09 by Emilio Pozuelo Monfort at 2021-05-03T10:00:54+02:00 some exiv2 issues n/a on buster stretch - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] lts: klibc no-dsa on stretch

2021-05-03 Thread Emilio Pozuelo Monfort
Emilio Pozuelo Monfort pushed to branch master at Debian Security Tracker / security-tracker Commits: 94737654 by Emilio Pozuelo Monfort at 2021-05-03T09:08:21+02:00 lts: klibc no-dsa on stretch - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] update note

2021-05-03 Thread Thorsten Alteholz
suites - NOTE: 20210418: still WIP, trying to automize golang updates + NOTE: 20210503: still WIP, trying to automize golang updates -- golang-gogoprotobuf NOTE: 20210218: If you have any idea why this is called the "skippy peanut butter" issue, I would be mildly interested. (lamb

[Git][security-tracker-team/security-tracker][master] update note in dla-needed

2021-05-03 Thread Abhijith PA
= @@ -68,6 +68,7 @@ gpac (Thorsten Alteholz) -- gsoap (Abhijith PA) NOTE: 20210420: upstream only responded with suggestion to upgrade (abhijith) + NOTE: 20210503: No reply from upstream dev yet (abhijith) -- imagemagick (Anton Gladky) NOTE: 20210415